Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
intaq
Explorer

Monitor user / read user with permissions to execute troubleshooting commands

Hello:

I am trying to create a user with monitoring permissions and also that can execute troubleshooting commands:

tcpdump
fw monitor
cpview
etc

For this I have created a role clone of the monitor and I have also allowed expert mode and the commands but it does not allow SSH access, for it to work I have to give it also adminRole roles.

Do you know what I could be missing?

Thanks!!

0 Kudos
1 Reply
Lesley
Mentor Mentor
Mentor

Here are the supported commands you can use in a role:

https://sc1.checkpoint.com/documents/R82/WebAdminGuides/EN/CP_R82_Gaia_AdminGuide/Content/Topics-GAG...

Second you need to create an admin role instead if monitor role. Monitor role is read-only. Admin role you give view access and write access. 

https://sc1.checkpoint.com/documents/R82/WebAdminGuides/EN/CP_R82_Gaia_AdminGuide/Content/Topics-GAG...

 

-------
If you like this post please give a thumbs up(kudo)! 🙂
0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events